CVE-2001-0398: High severity Ritlabs The Bat vulnerability
The BAT! mail client allows remote attackers to bypass user warnings of an executable attachment and execute arbitrary commands via an attachment whose file name contains many spaces, which also causes the BAT! to misrepresent the attachment's type with a different icon.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2001-0398?
CVE-2001-0398 is considered a moderate severity vulnerability.
How do I fix CVE-2001-0398?
To fix CVE-2001-0398, upgrade to a patched version of The BAT! mail client that addresses this vulnerability.
What types of attack are possible with CVE-2001-0398?
CVE-2001-0398 allows remote attackers to bypass executable attachment warnings, potentially leading to arbitrary command execution.
Which versions of The BAT! are affected by CVE-2001-0398?
CVE-2001-0398 affects several versions of The BAT!, including versions 1.0 through 1.49.
Is there a workaround for CVE-2001-0398?
A temporary workaround for CVE-2001-0398 is to avoid opening email attachments that have unusual file names with excessive spaces.